CVE-2006-0987EPSS p99.1%

CVE-2006-0987CVE-2006-0987

isc / bind

Description

The default configuration of ISC BIND before 9.4.1-P1, when configured as a caching name server, allows recursive queries and provides additional delegation information to arbitrary IP addresses, which allows remote attackers to cause a denial of service (traffic amplification) via DNS queries with spoofed source IP addresses.

Scoring

CVSS 5.0 ()
VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
EPSS58.03% probability of exploitation · percentile 99.1% · 2026-10-10T12:00:23Z
Last modified2026-10-09
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.